CVE-2017-6719: Cisco IOS XR

Medium severity, CVSS 6.7. EPSS: 0.7% chance of exploitation in the next 30 days.

A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitrary commands on the host operating system with root privileges, aka Command Injection. More Information: CSCvb99406. Known Affected Releases: 6.2.1.BASE. Known Fixed Releases: 6.2.1.28i.BASE 6.2.1.22i.BASE 6.1.32.8i.BASE 6.1.31.3i.BASE 6.1.3.10i.BASE.

Affected products

  • Cisco IOS XR: version 6.0.2 only; version 6.0.2.01 only

Published 2017-07-04. Last modified 2026-06-17.